CVE-2023-25233 β€” Out-of-bounds Write in Ac500 Firmware

Severity
9.8CRITICALNVD
EPSS
0.4%
top 37.00%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 27

Description

Tenda AC500 V2.0.1.9(1307) is vulnerable to Buffer Overflow in function fromRouteStatic via parameters entrys and mitInterface.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages1 packages

β–ΆNVDtenda/ac500_firmware2.0.1.9\(1307\)

πŸ”΄Vulnerability Details

2
GHSA
GHSA-7m6w-9p9v-f96g: Tenda AC500 V2β†—2023-02-27
β–Ά
CVEList
CVE-2023-25233: Tenda AC500 V2β†—2023-02-27
β–Ά
CVE-2023-25233 β€” Out-of-bounds Write in Tenda | cvebase